Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
simplemachines smf 1.0.12 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-6971
The password reset functionality in Simple Machines Forum (SMF) 1.0.x prior to 1.0.14, 1.1.x prior to 1.1.6, and 2.0 prior to 2.0 beta 4 includes clues about the random number generator state within a hidden form field and generates predictable validation codes, which allows remo...
Simplemachines Smf 1.0.13
Simplemachines Smf 1.1.4
Simplemachines Smf 2.0-beta2
Simplemachines Smf 2.0-beta3
Simplemachines Smf 1.1.5
Simplemachines Smf 2.0
Simplemachines Smf 1.0.12
1 EDB exploit
NA
CVE-2011-3615
Multiple SQL injection vulnerabilities in Simple Machines Forum (SMF) prior to 1.1.15 and 2.x prior to 2.0.1 allow remote malicious users to execute arbitrary SQL commands via vectors involving a (1) HTML entity or (2) display name. NOTE: some of these details are obtained from t...
Simplemachines Smf 1.0.13
Simplemachines Smf 1.1.2
Simplemachines Smf 1.0.8
Simplemachines Smf 1.1
Simplemachines Smf 1.0
Simplemachines Smf 1.0.1
Simplemachines Smf 1.0.19
Simplemachines Smf 1.0.7
Simplemachines Smf 1.0.9
Simplemachines Smf 1.0.10
Simplemachines Smf 1.1.4
Simplemachines Smf 1.0.16
Simplemachines Smf 1.0.14
Simplemachines Smf 1.0.17
Simplemachines Smf 1.1.10
Simplemachines Smf
Simplemachines Smf 1.0.21
Simplemachines Smf 1.1.11
Simplemachines Smf 1.1.8
Simplemachines Smf 1.1.13
Simplemachines Smf 1.0.2
Simplemachines Smf 1.1.3
NA
CVE-2011-1130
Simple Machines Forum (SMF) prior to 1.1.13, and 2.x prior to 2.0 RC5, does not properly validate the start parameter, which might allow remote malicious users to conduct SQL injection attacks, obtain sensitive information, or cause a denial of service via a crafted value, relate...
Simplemachines Smf 1.0.13
Simplemachines Smf 1.1.2
Simplemachines Smf 1.0.8
Simplemachines Smf 1.1
Simplemachines Smf 1.0
Simplemachines Smf 1.0.1
Simplemachines Smf
Simplemachines Smf 1.0.19
Simplemachines Smf 1.0.7
Simplemachines Smf 1.0.9
Simplemachines Smf 1.0.10
Simplemachines Smf 1.1.4
Simplemachines Smf 1.0.16
Simplemachines Smf 1.0.14
Simplemachines Smf 1.0.17
Simplemachines Smf 1.1.10
Simplemachines Smf 1.0.21
Simplemachines Smf 1.1.11
Simplemachines Smf 1.1.8
Simplemachines Smf 1.0.2
Simplemachines Smf 1.1.3
Simplemachines Smf 1.1.7
NA
CVE-2011-1127
SSI.php in Simple Machines Forum (SMF) prior to 1.1.13, and 2.x prior to 2.0 RC5, does not properly restrict guest access, which allows remote malicious users to have an unspecified impact via unknown vectors.
Simplemachines Smf 1.0.13
Simplemachines Smf 1.1.2
Simplemachines Smf 1.0.8
Simplemachines Smf 1.1
Simplemachines Smf 1.0
Simplemachines Smf 1.0.1
Simplemachines Smf
Simplemachines Smf 1.0.19
Simplemachines Smf 1.0.7
Simplemachines Smf 1.0.9
Simplemachines Smf 1.0.10
Simplemachines Smf 1.1.4
Simplemachines Smf 1.0.16
Simplemachines Smf 1.0.14
Simplemachines Smf 1.0.17
Simplemachines Smf 1.1.10
Simplemachines Smf 1.0.21
Simplemachines Smf 1.1.11
Simplemachines Smf 1.1.8
Simplemachines Smf 1.0.2
Simplemachines Smf 1.1.3
Simplemachines Smf 1.1.7
NA
CVE-2011-1131
The PlushSearch2 function in Search.php in Simple Machines Forum (SMF) prior to 1.1.13, and 2.x prior to 2.0 RC5, uses certain cached data in a situation where a temporary table has been created, even though this cached data is intended only for situations where a temporary table...
Simplemachines Smf 1.0.13
Simplemachines Smf 1.1.2
Simplemachines Smf 1.0.8
Simplemachines Smf 1.1
Simplemachines Smf 1.0
Simplemachines Smf 1.0.1
Simplemachines Smf
Simplemachines Smf 1.0.19
Simplemachines Smf 1.0.7
Simplemachines Smf 1.0.9
Simplemachines Smf 1.0.10
Simplemachines Smf 1.1.4
Simplemachines Smf 1.0.16
Simplemachines Smf 1.0.14
Simplemachines Smf 1.0.17
Simplemachines Smf 1.1.10
Simplemachines Smf 1.0.21
Simplemachines Smf 1.1.11
Simplemachines Smf 1.1.8
Simplemachines Smf 1.0.2
Simplemachines Smf 1.1.3
Simplemachines Smf 1.1.7
NA
CVE-2011-1128
The loadUserSettings function in Load.php in Simple Machines Forum (SMF) prior to 1.1.13, and 2.x prior to 2.0 RC5, does not properly handle invalid login attempts, which might make it easier for remote malicious users to obtain access or cause a denial of service via a brute-for...
Simplemachines Smf 1.0.13
Simplemachines Smf 1.1.2
Simplemachines Smf 1.0.8
Simplemachines Smf 1.1
Simplemachines Smf 1.0
Simplemachines Smf 1.0.1
Simplemachines Smf
Simplemachines Smf 1.0.19
Simplemachines Smf 1.0.7
Simplemachines Smf 1.0.9
Simplemachines Smf 1.0.10
Simplemachines Smf 1.1.4
Simplemachines Smf 1.0.16
Simplemachines Smf 1.0.14
Simplemachines Smf 1.0.17
Simplemachines Smf 1.1.10
Simplemachines Smf 1.0.21
Simplemachines Smf 1.1.11
Simplemachines Smf 1.1.8
Simplemachines Smf 1.0.2
Simplemachines Smf 1.1.3
Simplemachines Smf 1.1.7
NA
CVE-2011-1129
Cross-site scripting (XSS) vulnerability in the EditNews function in ManageNews.php in Simple Machines Forum (SMF) prior to 1.1.13, and 2.x prior to 2.0 RC5, might allow remote authenticated users to inject arbitrary web script or HTML via a save_items action.
Simplemachines Smf 1.0.13
Simplemachines Smf 1.1.2
Simplemachines Smf 1.0.8
Simplemachines Smf 1.1
Simplemachines Smf 1.0
Simplemachines Smf 1.0.1
Simplemachines Smf
Simplemachines Smf 1.0.19
Simplemachines Smf 1.0.7
Simplemachines Smf 1.0.9
Simplemachines Smf 1.0.10
Simplemachines Smf 1.1.4
Simplemachines Smf 1.0.16
Simplemachines Smf 1.0.14
Simplemachines Smf 1.0.17
Simplemachines Smf 1.1.10
Simplemachines Smf 1.0.21
Simplemachines Smf 1.1.11
Simplemachines Smf 1.1.8
Simplemachines Smf 1.0.2
Simplemachines Smf 1.1.3
Simplemachines Smf 1.1.7
NA
CVE-2013-7236
Simple Machines Forum (SMF) 2.0.6, 1.1.19, and previous versions allows remote malicious users to impersonate arbitrary users via a Unicode homoglyph character in a username.
Simplemachines Simple Machines Forum 1.0.15
Simplemachines Simple Machines Forum 1.1
Simplemachines Simple Machines Forum 1.1.6
Simplemachines Simple Machines Forum 1.1.15
Simplemachines Simple Machines Forum 1.1.8
Simplemachines Simple Machines Forum 1.1.5
Simplemachines Simple Machines Forum 1.1.11
Simplemachines Simple Machines Forum 1.1.14
Simplemachines Simple Machines Forum 1.0.14
Simplemachines Simple Machines Forum 1.0.8
Simplemachines Simple Machines Forum 1.0
Simplemachines Simple Machines Forum 1.1.16
Simplemachines Simple Machines Forum 1.1.1
Simplemachines Simple Machines Forum
Simplemachines Simple Machines Forum 1.0.2
Simplemachines Simple Machines Forum 1.0.12
Simplemachines Simple Machines Forum 1.0.16
Simplemachines Simple Machines Forum 1.0.9
Simplemachines Simple Machines Forum 1.0.23
Simplemachines Simple Machines Forum 1.0.21
Simplemachines Simple Machines Forum 1.0.6
Simplemachines Simple Machines Forum 1.1.3
NA
CVE-2013-7235
Simple Machines Forum (SMF) prior to 1.1.19 and 2.x prior to 2.0.6 allows remote malicious users to impersonate arbitrary users via multiple space characters characters.
Simplemachines Simple Machines Forum 1.0.15
Simplemachines Simple Machines Forum 1.1
Simplemachines Simple Machines Forum 1.1.6
Simplemachines Simple Machines Forum 1.1.15
Simplemachines Simple Machines Forum 1.1.8
Simplemachines Simple Machines Forum 1.1.5
Simplemachines Simple Machines Forum 2.0
Simplemachines Simple Machines Forum 1.1.11
Simplemachines Simple Machines Forum 1.1.14
Simplemachines Simple Machines Forum 1.0.14
Simplemachines Simple Machines Forum 1.0.8
Simplemachines Simple Machines Forum 1.0
Simplemachines Simple Machines Forum 1.1.16
Simplemachines Simple Machines Forum 1.1.1
Simplemachines Simple Machines Forum
Simplemachines Simple Machines Forum 1.0.2
Simplemachines Simple Machines Forum 1.0.12
Simplemachines Simple Machines Forum 1.0.16
Simplemachines Simple Machines Forum 2.0.4
Simplemachines Simple Machines Forum 1.0.9
Simplemachines Simple Machines Forum 1.0.23
Simplemachines Simple Machines Forum 1.0.21
NA
CVE-2013-7234
Simple Machines Forum (SMF) prior to 1.1.19 and 2.x prior to 2.0.6 allows remote malicious users to conduct clickjacking attacks via an X-Frame-Options header.
Simplemachines Simple Machines Forum 1.0.15
Simplemachines Simple Machines Forum 1.1
Simplemachines Simple Machines Forum 1.1.6
Simplemachines Simple Machines Forum 1.1.15
Simplemachines Simple Machines Forum 1.1.8
Simplemachines Simple Machines Forum 1.1.5
Simplemachines Simple Machines Forum 2.0
Simplemachines Simple Machines Forum 1.1.11
Simplemachines Simple Machines Forum 1.1.14
Simplemachines Simple Machines Forum 1.0.14
Simplemachines Simple Machines Forum 1.0.8
Simplemachines Simple Machines Forum 1.0
Simplemachines Simple Machines Forum 1.1.16
Simplemachines Simple Machines Forum 1.1.1
Simplemachines Simple Machines Forum
Simplemachines Simple Machines Forum 1.0.2
Simplemachines Simple Machines Forum 1.0.12
Simplemachines Simple Machines Forum 1.0.16
Simplemachines Simple Machines Forum 2.0.4
Simplemachines Simple Machines Forum 1.0.9
Simplemachines Simple Machines Forum 1.0.23
Simplemachines Simple Machines Forum 1.0.21
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started